2003 CVE Vulnerabilities
1,555 CVEs published in 2003.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2003-1311 | — | — | 1.4% | Dec 31, 2003 | siteminderagent/SmMakeCookie.ccc in Netegrity SiteMinder does not ensure that the TARGET parameter names a valid redirec... |
| CVE-2003-1212 | — | — | 1.7% | Dec 31, 2003 | MaxWebPortal 1.30 allows remote attackers to perform unauthorized actions by modifying hidden form fields, such as the (... |
| CVE-2003-1409 | — | — | 2.5% | Dec 31, 2003 | TOPo 1.43 allows remote attackers to obtain sensitive information by sending an HTTP request with an invalid parameter t... |
| CVE-2003-1122 | — | — | 0.8% | Dec 31, 2003 | ScriptLogic 4.01, and possibly other versions before 4.14, uses insecure permissions for the LOGS$ share, which allows u... |
| CVE-2003-1489 | — | — | 0.9% | Dec 31, 2003 | upload.php in Truegalerie 1.0 allows remote attackers to read arbitrary files by specifying the target filename in the f... |
| CVE-2003-1509 | — | — | 2.1% | Dec 31, 2003 | Real Networks RealOne Enterprise Desktop 6.0.11.774, RealOne Player 2.0, and RealOne Player 6.0.11.818 through RealOne P... |
| CVE-2003-1209 | — | — | 2.4% | Dec 31, 2003 | The Post_Method function in Monkey HTTP Daemon before 0.6.2 allows remote attackers to cause a denial of service (crash)... |
| CVE-2003-1276 | — | — | 0.2% | Dec 31, 2003 | Netfone.exe of NetTelephone 3.5.6 uses weak encryption for user PIN's and stores user account numbers in plaintext in th... |
| CVE-2003-1310 | — | — | 1.1% | Dec 31, 2003 | The DeviceIoControl function in the Norton Device Driver (NAVAP.sys) in Symantec Norton AntiVirus 2002 allows local user... |
| CVE-2003-1322 | — | — | 5.7% | Dec 31, 2003 | Multiple stack-based buffer overflows in Atrium MERCUR IMAPD in MERCUR Mailserver before 4.2.15.0 allow remote attackers... |
| CVE-2003-1416 | — | — | 1.2% | Dec 31, 2003 | BisonFTP Server 4 release 2 allows remote attackers to cause a denial of service (CPU consumption) via a long (1) ls or ... |
| CVE-2003-0885 | — | — | 1.3% | Dec 31, 2003 | Xscreensaver 4.14 contains certain debugging code that should have been omitted, which causes Xscreensaver to create tem... |
| CVE-2003-0627 | — | — | 1.6% | Dec 31, 2003 | psdoccgi.exe in PeopleSoft PeopleTools 8.4 through 8.43 allows remote attackers to cause a denial of service (applicatio... |
| CVE-2003-1341 | — | — | 7.7% | Dec 31, 2003 | The default installation of Trend Micro OfficeScan 3.0 through 3.54 and 5.x allows remote attackers to bypass authentica... |
| CVE-2003-1345 | — | — | 1.5% | Dec 31, 2003 | Directory traversal vulnerability in s.dll in WebCollection Plus 5.00 allows remote attackers to view arbitrary files in... |
| CVE-2003-0959 | — | — | 1.7% | Dec 31, 2003 | Multiple integer overflows in the 32bit emulation for AMD64 architectures in Linux 2.4 kernel before 2.4.21 allows attac... |
| CVE-2003-1221 | — | — | 0.9% | Dec 31, 2003 | BEA WebLogic Express and Server 7.0 through 8.1 SP 1, under certain circumstances when a request to use T3 over SSL (t3s... |
| CVE-2003-1344 | — | — | 2.5% | Dec 31, 2003 | Trend Micro Virus Control System (TVCS) Log Collector allows remote attackers to obtain usernames, encrypted passwords, ... |
| CVE-2003-1342 | — | — | 3.4% | Dec 31, 2003 | Trend Micro Virus Control System (TVCS) 1.8 running with IIS allows remote attackers to cause a denial of service (memor... |
| CVE-2003-1120 | — | — | 0.3% | Dec 31, 2003 | Race condition in SSH Tectia Server 4.0.3 and 4.0.4 for Unix, when the password change plugin (ssh-passwd-plugin) is ena... |
| CVE-2003-0956 | — | — | 0.3% | Dec 31, 2003 | Multiple race conditions in the handling of O_DIRECT in Linux kernel prior to version 2.4.22 could cause stale data to b... |
| CVE-2003-0317 | — | — | 6.0% | Dec 31, 2003 | iisPROTECT 2.1 and 2.2 allows remote attackers to bypass authentication via an HTTP request containing URL-encoded chara... |
| CVE-2003-1440 | — | — | 1.2% | Dec 31, 2003 | SpamProbe 0.8a allows remote attackers to cause a denial of service (crash) via HTML e-mail with newline characters with... |
| CVE-2003-1223 | — | — | 1.2% | Dec 31, 2003 | The Node Manager for BEA WebLogic Express and Server 6.1 through 8.1 SP 1 allows remote attackers to cause a denial of s... |
| CVE-2003-1490 | — | — | 1.8% | Dec 31, 2003 | SonicWall Pro running firmware 6.4.0.1 allows remote attackers to cause a denial of service (device reset) via a long HT... |
Check if your code is affected by 2003 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now